CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.4. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2023-50178
Severity
HIGH
CVSS
7.4
EPSS
0.20%
Original NVD Description
An improper certificate validation vulnerability [CWE-295] in FortiADC 7.4.0, 7.2.0 through 7.2.3, 7.1 all versions, 7.0 all versions, 6.2 all versions, 6.1 all versions and 6.0 all versions may allow a remote and unauthenticated attacker to perform a Man-in-the-Middle attack on the communication channel between the device and various remote servers such as private SDN connectors and FortiToken Cloud.
Related CVEs
Other vulnerabilities affecting the same vendor(s)